Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
11881 2023-06-29 09:49 File_pass1234.7z  

e276af9bc3421b6131dc5ae635e98123


Redline Escalate priviledges PWS KeyLogger AntiDebug AntiVM RedLine Malware download Amadey Malware suspicious privilege Malicious Traffic Check memory Checks debugger Creates executable files unpack itself IP Check PrivateLoader Tofsee Fabookie Stealer Windows Trojan DNS Downloader
27 50 23 14 6.2 M ZeroCERT

11882 2023-06-29 09:42 Setup.exe  

cde3f3bde3a3a82bb4999ce1f4b81d14


Generic Malware UPX Malicious Packer Antivirus AntiDebug AntiVM OS Processor Check PE32 PE File VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger WMI Creates shortcut unpack itself powershell.exe wrote Check virtual network interfaces suspicious process AntiVM_Disk VM Disk Size Check Windows ComputerName DNS Cryptographic key
1 9.8 28 ZeroCERT

11883 2023-06-29 09:31 paste.txt.ps1  

4251821c615e5ea7f3f9aa43adbda460


Generic Malware Antivirus VirusTotal Malware Check memory unpack itself WriteConsoleW Windows Cryptographic key
1.6 M 13 ZeroCERT

11884 2023-06-29 08:03 2esHVNjmytPH05O.exe  

5cb31213e34b960dd22125d5881d783b


Generic Malware .NET framework(MSIL) Antivirus SMTP KeyLogger AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed
1 4 3 15.6 32 ZeroCERT

11885 2023-06-29 07:48 u3jHBdYzXMviLak.exe  

1fcbbe11c8004a763d0ea4944b92444b


Gen1 UPX Malicious Library Malicious Packer Anti_VM PDF OS Processor Check PE64 PE File DLL ZIP Format VirusTotal Malware Check memory Creates executable files crashed
2.0 M 13 ZeroCERT

11886 2023-06-29 07:47 Rgss.exe  

899eacd4bbe1ad8d2503a9aba92c685a


NSIS UPX Malicious Library PE32 PE File DLL VirusTotal Malware Check memory Creates executable files unpack itself AppData folder anti-virtualization Tofsee Discord DNS crashed
2 3 4.0 M 41 ZeroCERT

11887 2023-06-29 07:45 defounderzx.exe  

25a6280b20b14dc747c700a1a91cb51b


Generic Malware .NET framework(MSIL) Antivirus .NET EXE PE32 PE File VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
7.8 M 50 ZeroCERT

11888 2023-06-29 07:45 owenzx.exe  

d14a91aa57d07c025c41acacb012c819


Formbook .NET framework(MSIL) PWS AntiDebug AntiVM .NET EXE PE32 PE File FormBook Malware download VirusTotal Malware PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself
1 3 1 8.4 M 36 ZeroCERT

11889 2023-06-29 07:43 pmexzx.exe  

9e075f19632321f1b9bd8e08c97ccc3c


Formbook .NET framework(MSIL) PWS SMTP KeyLogger AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed keylogger
1 2 1 13.2 M 33 ZeroCERT

11890 2023-06-29 07:42 TopSofts.Setup.exe  

7b6479306a1bb71a9fb4413e295bf683


RedLine stealer UPX Malicious Library AntiDebug AntiVM OS Processor Check PE32 PE File VirusTotal Malware Buffer PE PDB Code Injection Check memory Checks debugger buffers extracted unpack itself WriteConsoleW Windows DNS Cryptographic key crashed
1 10.0 M 32 ZeroCERT

11891 2023-06-29 07:41 iccu.exe  

eb43687f6f0fcffa1aa33ac8f39cb3a7


Formbook .NET framework(MSIL) PWS SMTP KeyLogger AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed
1 2 1 11.0 39 ZeroCERT

11892 2023-06-29 07:40 1Top.exe  

51b7849db58928fb6c1f1e2a343cd2f0


UPX .NET framework(MSIL) Confuser .NET OS Processor Check .NET EXE PE32 PE File RedLine Malware download FTP Client Info Stealer VirusTotal Malware suspicious privilege Check memory Checks debugger buffers extracted unpack itself Collect installed applications installed browsers check Stealer Windows Browser ComputerName DNS Cryptographic key Software crashed
1 3 5.8 47 ZeroCERT

11893 2023-06-28 17:04 data64_2.exe  

7b8d33d5c804c878a5e1188890327d20


RedLine stealer UPX Admin Tool (Sysinternals etc ...) AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer RedLine Malware download FTP Client Info Stealer VirusTotal Malware Buffer PE PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Collect installed applications installed browsers check Stealer Windows Browser ComputerName Remote Code Execution DNS Cryptographic key Software crashed
1 1 12.8 M 29 ZeroCERT

11894 2023-06-28 17:02 data64_3.exe  

799c6629928f0b945662d787d85a60e6


Themida Packer UPX Anti_VM .NET EXE PE32 PE File VirusTotal Malware AutoRuns suspicious privilege Check memory Checks debugger Creates executable files unpack itself Checks Bios Detects VMWare Check virtual network interfaces AppData folder VMware anti-virtualization Tofsee Windows Remote Code Execution Firmware crashed
2 2 1 8.6 29 ZeroCERT

11895 2023-06-28 17:02 dollzx.exe  

c4df006e39809b6857f3cc9117fa2088


Formbook PWS SMTP KeyLogger AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Windows Browser Email ComputerName Cryptographic key Software crashed keylogger
2 12.0 M 19 ZeroCERT